Change logs for wireshark source package in Artful

  • wireshark (2.4.2-1) unstable; urgency=medium
    
      [ Pedro Ribeiro ]
      * Updated Portuguese translation for debconf messages (Closes: #874522)
    
      [ Balint Reczey ]
      * New upstream release
        - release notes:
          https://www.wireshark.org/docs/relnotes/wireshark-2.4.2.html
        - security fixes:
          - BT ATT dissector crash (CVE-2017-15192)
          - MBIM dissector crash (CVE-2017-15193)
          - DMP dissector crash (CVE-2017-15191)
          - RTSP dissector crash (CVE-2017-15190)
          - DOCSIS infinite loop  (CVE-2017-15189)
      [ Helge Kreutzmann ]
      * Updated German translation for debconf messages (Closes: #877636)
    
      [ Frans Spiesschaert ]
      * Updated Dutch translation for debconf messages (Closes: #877244)
    
     -- Balint Reczey <email address hidden>  Wed, 11 Oct 2017 23:41:59 +0200
  • wireshark (2.4.0-1) unstable; urgency=medium
    
      * Use debconf messages instead of "echo" in postinst/postrm (LP: #1687344)
      * New upstream release
        - release notes:
          https://www.wireshark.org/docs/relnotes/wireshark-2.4.0.html
        - security fixes:
          - deeply nested DAAP data may cause stack exhaustion
            (uncontrolled recursion) in the dissect_daap_one_tag function
            (CVE-2017-9617) (Closes: #870174)
          - PROFINET IO data with a high recursion depth allows remote
            attackers to cause a denial of service (stack exhaustion)
            in the dissect_IODWriteReq function. (CVE-2017-9766)
            (Closes: #870175)
          - the DOCSIS dissector could go into an infinite loop (CVE-2017-11406)
            (Closes: #870172)
          - the MQ dissector could crash (CVE-2017-11407) (Closes: #870172)
          - the AMQP dissector could crash (CVE-2017-11408) (Closes: #870172)
          - the WBXML dissector could go into an infinite loop, triggered
            by packet injection or a malformed capture file (CVE-2017-11410)
            (Closes: #870180)
          - the openSAFETY dissector could crash or exhaust system memory
            (CVE-2017-11411) (Closes: #870179)
      * Update shared library package names to match new .so versions
      * Refresh patches
      * Drop workaround to use system's nghttp2 since upstream does not
        ship the embedded copy anymore
      * Add build-dependency on libparse-yapp-perl, liblz4-dev, libsnappy-dev,
        libspandsp-dev, libxml2-dev and lynx to enable new upstream features
      * Update PO files about debconf templates
    
     -- Balint Reczey <email address hidden>  Sun, 06 Aug 2017 13:22:45 -0400
  • wireshark (2.2.7-1) unstable; urgency=medium
    
      [ Balint Reczey ]
      * Convert d/copyright to machine readable format
      * Download releases from GitHub excluding upstream's debian/ dir
      * Use my @ubuntu.com email address in Maintainer field
      * New upstream release
        - release notes:
          https://www.wireshark.org/docs/relnotes/wireshark-2.2.7.html
        - security fixes (Closes: #864058):
          - Bazaar dissector infinite loop (CVE-2017-9352)
          - DOF dissector read overflow (CVE-2017-9348)
          - DHCP dissector read overflow (CVE-2017-9351)
          - SoulSeek dissector infinite loop (CVE-2017-9346)
          - DNS dissector infinite loop (CVE-2017-9345)
          - DICOM dissector infinite loop (CVE-2017-9349)
          - openSAFETY dissector memory exhaustion (CVE-2017-9350)
          - BT L2CAP dissector divide by zero (CVE-2017-9344)
          - MSNIP dissector crash (CVE-2017-9343)
          - ROS dissector crash (CVE-2017-9347)
          - RGMP dissector crash (CVE-2017-9354)
          - IPv6 dissector crash (CVE-2017-9353)
    
      [ Alexander Gerasiov ]
      * Fix pkg-config libdir (Closes: #857729)
    
     -- Balint Reczey <email address hidden>  Tue, 27 Jun 2017 00:48:15 +0200
  • wireshark (2.2.6+g32dac6a-2) unstable; urgency=medium
    
      * Upload to unstable
    
     -- Balint Reczey <email address hidden>  Sun, 28 May 2017 00:50:22 +0200
  • wireshark (2.2.5+g440fd4d-2) unstable; urgency=medium
    
      * Upload to unstable
    
     -- Balint Reczey <email address hidden>  Thu, 09 Mar 2017 09:33:54 +0100
  • wireshark (2.2.4+gcc3dc1b-1) unstable; urgency=medium
    
      * New upstream release
        - release notes:
          https://www.wireshark.org/docs/relnotes/wireshark-2.2.4.html
        - security fixes:
          - The ASTERIX dissector could go into an infinite loop
          - The DHCPv6 dissector could go into a large loop
      * Update symbols file
    
     -- Balint Reczey <email address hidden>  Tue, 24 Jan 2017 10:31:51 +0100